Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-5237

Опубликовано: 06 окт. 2007
Источник: nvd
CVSS2: 7.1
EPSS Низкий

Описание

Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to read and modify local files via an untrusted application, aka "two vulnerabilities."

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:sun:jdk:*:update2:*:*:*:*:*:*
Версия до 1.6.0 (включая)
cpe:2.3:a:sun:jre:*:update1:*:*:*:*:*:*
Версия до 1.6.0 (включая)
cpe:2.3:a:sun:jre:*:update2:*:*:*:*:*:*
Версия до 1.6.0 (включая)

EPSS

Процентиль: 74%
0.00876
Низкий

7.1 High

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
почти 18 лет назад

Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to read and modify local files via an untrusted application, aka "two vulnerabilities."

redhat
почти 18 лет назад

Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to read and modify local files via an untrusted application, aka "two vulnerabilities."

debian
почти 18 лет назад

Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not prop ...

github
больше 3 лет назад

Java Web Start in Sun JDK and JRE 6 Update 2 and earlier does not properly enforce access restrictions for untrusted applications, which allows user-assisted remote attackers to read and modify local files via an untrusted application, aka "two vulnerabilities."

EPSS

Процентиль: 74%
0.00876
Низкий

7.1 High

CVSS2

Дефекты

CWE-264